CRISSCROSS CANCELLATION PROTOCOL
    11.
    发明申请

    公开(公告)号:US20100287299A1

    公开(公告)日:2010-11-11

    申请号:US12824084

    申请日:2010-06-25

    IPC分类号: G06F15/16

    摘要: Technologies, systems, and methods for ordered message delivery that avoid message races or crisscrosses between communicating nodes. For example, if Node A sends message 3 towards Node B and, shortly thereafter, Node B sends message X to Node A, Node A would like to know whether or not message X reflects Node B's state after receiving message 3. If Node B received message 3 prior to sending message X, then proper state may be maintained between the nodes. But if messages 3 and X crisscrossed, or if message 3 was never properly received by Node B, then the state between the nodes may be corrupt. Technologies, systems, and methods are provided to avoid such corruption.

    摘要翻译: 用于有序消息传递的技术,系统和方法,可避免通信节点之间的消息种族或交叉。 例如,如果节点A向节点B发送消息3,并且此后不久,节点B向节点A发送消息X,则节点A想要知道消息X是否在接收到消息3之后反映节点B的状态。如果节点B接收到 消息3在发送消息X之前,则可以在节点之间保持适当的状态。 但如果消息3和X十字交叉,或者如果节点B从未正确接收到消息3,则节点之间的状态可能已损坏。 提供技术,系统和方法以避免这种腐败。

    MECHANISM FOR GEO DISTRIBUTING APPLICATION DATA
    12.
    发明申请
    MECHANISM FOR GEO DISTRIBUTING APPLICATION DATA 审中-公开
    GEO分布应用数据的机制

    公开(公告)号:US20100250646A1

    公开(公告)日:2010-09-30

    申请号:US12410552

    申请日:2009-03-25

    IPC分类号: G06F15/173 G06F15/16

    摘要: The claimed subject matter provides systems and methods that effectuates inter-datacenter resource interchange. The system can include devices that receive a resource request from a client component, forward the resource request to a management component that returns a cluster identity associated with a remote datacenter, the resource request and the cluster identity combined and dispatched to the remote datacenter via an inter-cluster gateway component for subsequent fulfillment by a remote server associated the remote datacenter.

    摘要翻译: 所要求保护的主题提供了实现数据中间资源交换的系统和方法。 该系统可以包括从客户端组件接收资源请求的设备,将资源请求转发到返回与远程数据中心相关联的集群标识的管理组件,将资源请求和集群标识组合并分发到远程数据中心,通过 集群间网关组件,用于由与远程数据中心相关联的远程服务器的后续完成。

    CRISSCROSS CANCELLATION PROTOCOL
    13.
    发明申请

    公开(公告)号:US20090083407A1

    公开(公告)日:2009-03-26

    申请号:US11858140

    申请日:2007-09-20

    IPC分类号: G06F15/173 G06F15/16

    摘要: Technologies, systems, and methods for ordered message delivery that avoid message races or crisscrosses between communicating nodes. For example, if Node A sends message 3 towards Node B and, shortly thereafter, Node B sends message X to Node A, Node A would like to know whether or not message X reflects Node B's state after receiving message 3. If Node B received message 3 prior to sending message X, then proper state may be maintained between the nodes. But if messages 3 and X crisscrossed, or if message 3 was never properly received by Node B, then the state between the nodes may be corrupt. Technologies, systems, and methods are provided to avoid such corruption.

    摘要翻译: 用于有序消息传递的技术,系统和方法,可避免通信节点之间的消息种族或交叉。 例如,如果节点A向节点B发送消息3,并且此后不久,节点B向节点A发送消息X,则节点A想要知道消息X是否在接收到消息3之后反映节点B的状态。如果节点B接收到 消息3在发送消息X之前,则可以在节点之间保持适当的状态。 但如果消息3和X十字交叉,或者如果节点B从未正确接收到消息3,则节点之间的状态可能已损坏。 提供了技术,系统和方法来避免这种腐败。

    Neighbor location discovery with directional antennas in a mesh network
    16.
    发明授权
    Neighbor location discovery with directional antennas in a mesh network 有权
    在网状网络中定位天线的邻居位置发现

    公开(公告)号:US07664054B2

    公开(公告)日:2010-02-16

    申请号:US11091641

    申请日:2005-03-28

    CPC分类号: H04W8/005 H04W84/18

    摘要: Disclosed is a Neighbor Location Discovery Protocol (NLDP) that determines the relative locations of the nodes in a mesh network. In one embodiment, NLDP can be implemented for an ad-hoc wireless network where the nodes are equipped with directional antennas and are not able to use GPS. While NLDP relies on nodes having at least two RF transceivers, it offers significant advantages over previously proposed protocols that employ only one RF transceiver. In NLDP antenna hardware is simple, easy to implement, and readily available. Further, NLDP exploits the host node's ability to operate simultaneously over non-overlapping channels to quickly converge on the neighbor's location. NLDP is limited by the range of the control channel, which operates in a omni-directional fashion. However, by choosing a low frequency band, high power, and low data rate, the range of the control channel can be increased to match the range on the data channel.

    摘要翻译: 公开了一种确定网状网络中节点的相对位置的邻居位置发现协议(NLDP)。 在一个实施例中,可以为节点配备定向天线并且不能使用GPS的自组织无线网络实现NLDP。 虽然NLDP依赖于具有至少两个RF收发器的节点,但是与先前提出的仅使用一个RF收发器的协议相比,它提供了显着的优点。 在NLDP天线硬件中,简单易用,易于实现。 此外,NLDP利用主机​​节点在非重叠信道上同时操作的能力,以快速收敛在邻居的位置。 NLDP受限于以全向方式运行的控制通道的范围。 然而,通过选择低频带,高功率和低数据速率,可以增加控制信道的范围以匹配数据信道上的范围。

    TEST AMPLIFICATION FOR DATACENTER APPLICATIONS VIA MODEL CHECKING
    17.
    发明申请
    TEST AMPLIFICATION FOR DATACENTER APPLICATIONS VIA MODEL CHECKING 有权
    通过模型检查进行试验放大

    公开(公告)号:US20090240987A1

    公开(公告)日:2009-09-24

    申请号:US12052655

    申请日:2008-03-20

    IPC分类号: G06F11/00

    CPC分类号: G06F11/3676 G06F11/3688

    摘要: Systems and methods are provided to determine execution errors in distributed computing environments. In an illustrative implementation, a computing environment comprises a test amplification engine and at least one instruction set to instruct the test amplification engine to process data representative of a request to perform a test for one or more execution errors in an distributed computing environment according to a selected execution error testing paradigm dependent on identifying critical sources of non-determinism for execution within the exemplary distributed computing environment. In an illustrative operation, a participating distributed computing environment operator (e.g., programmer) can cooperate with the test amplification engine to select an existing unit or integration test, instrument sources of non-determinism and to select one or more instrumentations for the unit or integration test for execution in the exemplary distributed computing environment to elicit the occurrence of one or more execution errors.

    摘要翻译: 提供系统和方法来确定分布式计算环境中的执行错误。 在说明性实现中,计算环境包括测试放大引擎和至少一个指令集,以指示测试放大引擎处理表示在分布式计算环境中对一个或多个执行错误进行测试的请求的数据,所述执行错误根据 选择的执行错误测试范例取决于确定在示例性分布式计算环境内执行的非确定性的关键来源。 在说明性操作中,参与分布式计算环境操作者(例如,程序员)可以与测试放大引擎配合以选择现有的单元或集成测试,非确定性的仪器源,并为单元或集成选择一个或多个仪器 测试在示例性分布式计算环境中执行以引发一个或多个执行错误的发生。

    Multi-radio unification protocol
    18.
    发明授权
    Multi-radio unification protocol 有权
    多无线电统一协议

    公开(公告)号:US07283834B2

    公开(公告)日:2007-10-16

    申请号:US11361126

    申请日:2006-02-24

    IPC分类号: H04B7/00

    摘要: An invention is disclosed whereby a wireless network node, equipped with two or more radio transceivers statically tuned to non-interfering frequency channels, can make decisions regarding which channel to use when communicating with a neighboring wireless node. A multi-radio unification protocol implemented in a wireless node coordinates the use of multiple wireless network interface cards and provides a virtual layer that hides the multiple physical network interfaces from higher layers of a node's network protocol stack. The invention is applicable to wireless networks generally, including those in which some nodes do not have multiple radios or do not recognize the multi-radio unification protocol. The invention makes possible simultaneous transmissions using available channels, thereby reducing interference and delay while increasing the overall capacity of the network.

    摘要翻译: 公开了一种发明,由此配备有两个或更多个静态调谐到非干扰频率信道的无线电收发机的无线网络节点可以在与相邻无线节点进行通信时作出关于使用哪个信道的决定。 在无线节点中实现的多无线电统一协议协调使用多个无线网络接口卡,并提供从节点网络协议栈的较高层隐藏多个物理网络接口的虚拟层。 本发明一般适用于无线网络,包括某些节点不具有多个无线电或不识别多无线电统一协议的无线网络。 本发明可以使用可用信道进行同时传输,从而减少干扰和延迟,同时增加网络的整体容量。

    Protecting Secret State from Memory Attacks
    19.
    发明申请
    Protecting Secret State from Memory Attacks 审中-公开
    保护秘密状态免受记忆攻击

    公开(公告)号:US20140006805A1

    公开(公告)日:2014-01-02

    申请号:US13535578

    申请日:2012-06-28

    IPC分类号: G06F12/14

    摘要: Described is a technology by which classes of memory attacks are prevented, including cold boot attacks, DMA attacks, and bus monitoring attacks. In general, secret state such as an AES key and an AES round block are maintained in on-SoC secure storage, such as a cache. Corresponding cache locations are locked to prevent eviction to unsecure storage. AES tables are accessed only in the on-SoC secure storage, to prevent access patterns from being observed. Also described is securely preparing for an interrupt-based context switch during AES round computations and securely resuming from a context switch without needing to repeat any already completed round or round of computations.

    摘要翻译: 描述了一种防止内存攻击类别的技术,包括冷启动攻击,DMA攻击和总线监视攻击。 通常,诸如AES密钥和AES循环的秘密状态被保持在诸如高速缓存之类的SoC安全存储中。 相应的缓存位置被锁定,以防止驱逐不安全的存储。 AES表只能在on-SoC安全存储中访问,以防止访问模式被观察。 还描述了在AES循环计算期间安全地准备用于基于中断的上下文切换,并且从上下文切换安全地恢复,而不需要重复任何已经完成的一轮或一轮的计算。

    Attestation Protocol for Securely Booting a Guest Operating System
    20.
    发明申请
    Attestation Protocol for Securely Booting a Guest Operating System 有权
    用于安全引导客户机操作系统的认证协议

    公开(公告)号:US20130054948A1

    公开(公告)日:2013-02-28

    申请号:US13222379

    申请日:2011-08-31

    IPC分类号: G06F15/177

    摘要: In a cloud computing environment, a production server virtualization stack is minimized to present fewer security vulnerabilities to malicious software running within a guest virtual machine. The minimal virtualization stack includes support for those virtual devices necessary for the operation of a guest operating system, with the code base of those virtual devices further reduced. Further, a dedicated, isolated boot server provides functionality to securely boot a guest operating system. The boot server is isolated through use of an attestation protocol, by which the boot server presents a secret to a network switch to attest that the boot server is operating in a clean mode. The attestation protocol may further employ a secure co-processor to seal the secret, so that it is only accessible when the boot server is operating in the clean mode.

    摘要翻译: 在云计算环境中,最小化生产服务器虚拟化堆栈,以减少在虚拟机中运行的恶意软件的安全漏洞。 最小的虚拟化堆栈包括对客户操作系统的操作所需的那些虚拟设备的支持,这些虚拟设备的代码基础进一步减少。 此外,专用的隔离引导服务器提供安全引导客户机操作系统的功能。 引导服务器通过使用认证协议进行隔离,引导服务器向网络交换机提供秘密,以证明引导服务器以干净的模式运行。 认证协议可以进一步采用安全协处理器来密封秘密,使得仅当引导服务器以干净模式操作时才可访问。